CVE-2023-3508

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
CVE-2023-37985

Cross-Site Request Forgery (CSRF) vulnerability in FiveStarPlugins Restaurant Menu and Food Ordering plugin Read More ...

Continue Reading
CVE-2023-3593

Mattermost fails to properly validate markdown, allowing an attacker to crash the server via a specially crafted markdown input.Read More ...

Continue Reading
CVE-2023-3577

Mattermost fails to properly restrict requests to localhost/intranet during the interactive dialog, which could allow an attacker to perform a limited blind SSRF.Read More ...

Continue Reading
CVE-2023-3587

Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any user with a valid sharing link to join the board with editor access, without the U ...

Continue Reading
CVE-2022-38062

Cross-Site Request Forgery (CSRF) vulnerability in Metagauss Download Theme plugin Read More ...

Continue Reading
CVE-2023-37974

Cross-Site Request Forgery (CSRF) vulnerability in Justin Klein WP Social AutoConnect plugin Read More ...

Continue Reading
CVE-2023-3584

Mattermost fails to properly check the authorization of POST /api/v4/teams when passing a team override scheme ID in the request, allowing an authenticated attacker with knowledge of a Team Over ...

Continue Reading

Back to Main

Subscribe for the latest news: